Cyber Risk Governance Director

Cyber Risk Governance Director

Posted 2 weeks ago by Hays

Negotiable
Undetermined
Hybrid
London, United Kingdom

Summary: The Cyber Risk and Control Expert role is a contract position focused on enhancing technology risk governance and control frameworks within a dynamic environment. The expert will lead initiatives related to control enhancements, risk reporting, and compliance across Technology and Cyber Risk functions. This pivotal role requires extensive experience in technology risk and control, particularly within financial services. The position emphasizes the execution of control strategies and the development of governance frameworks to strengthen organizational compliance standards.

Key Responsibilities:

  • Execute the Control Enhancement Plan for Engineering and provide updates to senior leadership.
  • Develop and maintain a centralised technology control library aligned to industry-recognized frameworks.
  • Implement control monitoring capabilities and oversee periodic testing of key controls at the group and divisional levels.
  • Define and track Key Control Indicators (KCIs) and ensure robust performance management of controls.
  • Oversee independent assurance and validation processes and drive control automation initiatives.
  • Identify systemic control weaknesses and collaborate with governance teams to implement root-cause remediation.
  • Produce risk profiles for Technology and Cyber Risk at divisional and global levels.
  • Deliver consistent Key Risk Indicator (KRI) reporting integrated into broader governance processes.
  • Facilitate risk committees and forums, including the Technology & Cyber Risk Committee (TCRC).
  • Oversee governance of technology standards, ensuring alignment with COBIT and NIST frameworks.
  • Execute strategies to enhance Technology & Cyber risk culture across the organisation.
  • Lead risk training & awareness initiatives for Engineering and Cyber teams.
  • Monitor and report compliance with Engineering & Cyber training requirements.

Key Skills:

  • Extensive experience in Technology Risk & Control within Financial Services.
  • Strong knowledge of industry control frameworks (COBIT, NIST) and regulatory standards.
  • Proven track record in risk governance, assurance, and control automation.
  • Relevant qualifications such as CFA, FRM, CISA, or similar are a plus.

Salary (Rate): undetermined

City: London

Country: United Kingdom

Working Arrangements: hybrid

IR35 Status: undetermined

Seniority Level: undetermined

Industry: IT